OmniHTTPd 2.0.8 and earlier allow remote attackers to obtain source code via a GET request with the URL-encoded symbol for a space (%20).
Link | Tags |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/6621 | vdb entry |
http://www.omnicron.ca/httpd/docs/release.html | |
http://archives.neohapsis.com/archives/bugtraq/2001-05/0248.html | mailing list exploit vendor advisory |